-
公开(公告)号:KR1020120033626A
公开(公告)日:2012-04-09
申请号:KR1020100095245
申请日:2010-09-30
Applicant: 한국전자통신연구원
CPC classification number: H04L41/042 , G06F21/755 , G06F2207/7219
Abstract: PURPOSE: A distributed data processing apparatus for fast side channel analysis and a method thereof are provided to distributedly performing process at a plurality of sub systems. CONSTITUTION: A main system creates divided work(S310). The main system transfers the divided work into a plurality of sub systems(S320). The sub systems distributedly process the divided work(S330). The sub system transfers the divided work result to the main system. The main system combines the divided work results(S340).
Abstract translation: 目的:提供一种用于快速侧信道分析的分布式数据处理装置及其方法,用于在多个子系统上分布式执行处理。 构成:一个主要的系统创建分工(S310)。 主系统将分割的工作传送到多个子系统(S320)。 子系统分散处理分割的工作(S330)。 子系统将分割的工作结果传送到主系统。 主要系统结合了分割的工作结果(S340)。
-
公开(公告)号:KR1020120033618A
公开(公告)日:2012-04-09
申请号:KR1020100095235
申请日:2010-09-30
Applicant: 한국전자통신연구원
CPC classification number: G06F21/755 , G06F2207/7219
Abstract: PURPOSE: A sub-channel parallel analysis apparatus and method thereof are provided to reduce analysis time by increasing the utilization ratio of a sub-channel analysis calculation apparatus. CONSTITUTION: A sub-channel parallel analysis apparatus collects power consumption information as waveform data from an analysis target apparatus(S410). The sub-channel parallel analysis apparatus processes the waveform data(S420). The sub-channel parallel analysis apparatus calculates intermediate values which is necessary for analyzing a sub-channel(S430). The sub-channel parallel analysis apparatus analyzes the sub-channel by using the calculated intermediate value(S440).
Abstract translation: 目的:提供一种子信道并行分析装置及其方法,通过增加子信道分析计算装置的利用率来减少分析时间。 构成:子通道并行分析装置从分析对象装置收集功耗信息作为波形数据(S410)。 子信道并行分析装置处理波形数据(S420)。 子信道并行分析装置计算分析子信道所必需的中间值(S430)。 子信道并行分析装置使用计算出的中间值分析子信道(S440)。
-
公开(公告)号:KR1020110066361A
公开(公告)日:2011-06-17
申请号:KR1020090122979
申请日:2009-12-11
Applicant: 한국전자통신연구원
IPC: G01R29/08
CPC classification number: G01R29/08 , G01R23/16 , G01R29/027 , G01R29/0871
Abstract: PURPOSE: Waveform outputting apparatus and method for analyzing sub-channels are provided to rapidly process request for outputting expanded or minimized waveform from an analyzer. CONSTITUTION: A converting part(110) reads the list of waveform measured values based on the analyzed waveform of a sub-channel. The list of the waveform measured values is divided by time and generates the lists of the maximum values and minimum values by time. The final maximum value and the final minimum value are selected. An outputting part(120) generates waveform using the final maximum value and the final minimum value. A saving part(130) saves the list of waveform measured values and the lists of the maximum values and minimum values.
Abstract translation: 目的:提供用于分析子通道的波形输出装置和方法,以快速处理从分析器输出扩展或最小化波形的请求。 构成:转换部分(110)基于分析的子通道的波形读取波形测量值的列表。 将波形测量值的列表除以时间,并按时间生成最大值和最小值的列表。 选择最终最大值和最终最小值。 输出部分(120)使用最终最大值和最终最小值产生波形。 保存部分(130)保存波形测量值列表和最大值和最小值的列表。
-
公开(公告)号:KR1020110020153A
公开(公告)日:2011-03-02
申请号:KR1020090123130
申请日:2009-12-11
Applicant: 한국전자통신연구원
Abstract: PURPOSE: An F-function processing device of a seed encoding system and a method thereof are provided to design a masking F-function to remove a process for conversion into an XOR masking value, thereby increasing implementation efficiency. CONSTITUTION: Arithmetic operation masking converters(B2A,400,402) convert a logically operated masking value which logically operates a seed F-function input value and a random masking value into an arithmetic operation masking value. Masking G-function units(MG,500,502) input the arithmetic operation masking value to output an arithmetic operation.
Abstract translation: 目的:提供种子编码系统的F函数处理装置及其方法,以设计掩蔽F函数以去除用于转换为XOR掩蔽值的处理,从而提高实现效率。 构成:算术运算屏蔽转换器(B2A,400,402)将逻辑运算的掩码值转换成逻辑运算种子F函数输入值和随机掩蔽值到算术运算掩蔽值中。 屏蔽G功能单元(MG,500,502)输入算术运算屏蔽值以输出算术运算。
-
公开(公告)号:KR1020110018988A
公开(公告)日:2011-02-25
申请号:KR1020090076506
申请日:2009-08-19
Applicant: 한국전자통신연구원
CPC classification number: Y02D10/34 , G06F11/3062 , G06F9/4405 , G06F11/3048
Abstract: PURPOSE: An apparatus for measuring power consumption and generating a trigger for side channel analysis is provided to perform a sub channel analysis about the device card in which the cipher algorism is included can be processed using a universal reader and a simple logic. CONSTITUTION: A card reader extend board(120) is connected to a host computer, and measures an electric power source signal of the device card and input/output signal. A trigger generating unit(140) receives the input/output signal from the card reader expansion board, and generates trigger signal based on the received input/output signal.
Abstract translation: 目的:提供一种用于测量功耗并产生用于侧信道分析的触发的装置,用于执行关于包含密码算法的设备卡的子信道分析,其可以使用通用读取器和简单逻辑来处理。 构成:读卡器延伸板(120)连接到主机,并测量设备卡的电源信号和输入/输出信号。 触发发生单元(140)从读卡器扩展板接收输入/输出信号,并且基于所接收的输入/输出信号产生触发信号。
-
公开(公告)号:KR1020100066286A
公开(公告)日:2010-06-17
申请号:KR1020090028569
申请日:2009-04-02
Applicant: 한국전자통신연구원
CPC classification number: H04L9/3226 , H04L9/0861 , H04L9/14 , H04L9/3066 , H04L9/3236
Abstract: PURPOSE: A system and a method thereof are provided to rapidly verify a plurality of public keys by verifying the validity of a public key by executing only summation calculation of points without scalar product calculation. CONSTITUTION: A public key verification part(120) receives a plurality of public keys transferred from a plurality of authorized devices(200,300,400). The public key verification part generates public key points about the public keys by applying an elliptic curve cryptography algorithm technique to the public keys. The public key verification part determines the validity of the public keys according to the accordance status between the public authentication values which have the number of the public keys and the public key point. A public key authentication value generating part(130) generates the public key authentication values by using the public keys.
Abstract translation: 目的:提供一种系统及其方法,用于通过仅执行没有标量积计算的点的求和计算来验证公钥的有效性来快速验证多个公开密钥。 构成:公开密钥验证部(120)接收从多个授权装置(200,300,400)传送的多个公开密钥。 公钥验证部分通过对公钥应用椭圆曲线加密算法技术来生成关于公钥的公钥点。 公开密钥验证部根据具有公开密钥的公开认证值和公钥点之间的一致状态来确定公开密钥的有效性。 公钥认证值生成部(130)通过使用公钥来生成公钥认证值。
-
公开(公告)号:KR100628315B1
公开(公告)日:2006-09-27
申请号:KR1020040098640
申请日:2004-11-29
Applicant: 한국전자통신연구원
CPC classification number: G07F7/1008 , G06Q20/3552
Abstract: 본 발명은 양도되는 물품의 전자식별 태그값 갱신 방법 및 시스템에 관한 것으로, (a) 양도인측의 전자식별 리더기를 통하여 양도되는 물품에 부착된 전자식별 태그를 읽고 제 1 전자식별 태그값을 추출하는 단계; (b) 상기 (a)단계에서 추출된 상기 제 1 전자식별 태그값을 통하여 공개 전자식별값을 판독하는 단계; (c) 상기 양도인측의 전자식별 리더기로부터 상기 전자식별 태그가 부착된 물품을 양도받은 양수인측의 전자식별 리더기로 상기 제 1 전자식별 태그값과 공개 전자식별값을 네트워크망을 통하여 전송하는 단계; 및 (d) 상기 양수인측의 전자식별 리더기는 상기 양도받은 물품에 부착된 전자식별 태그의 제 2 전자식별 태그값을 추출하고, 상기 (c)단계에서 전송받은 상기 제 1 전자식별 태그값과 공개 전자식별값을 이용하여 상기 제 2 전자식별 태그값을 새로운 전자식별 태그값으로 갱신하는 단계;로 구성된다. 따라서, 전자식별을 사용하면서도 전자식별이 부착된 물품의 소유를 이전할 수 있음으로 보안을 유지할 수 있다.
-
28.
公开(公告)号:KR1020030051995A
公开(公告)日:2003-06-26
申请号:KR1020010081720
申请日:2001-12-20
Applicant: 한국전자통신연구원
IPC: H04L12/66
Abstract: PURPOSE: A wireless Internet system using an application layer script and a point to point security session information managing method are provided to manage security information on entire sessions in a web server out of one transaction range, thereby supplying a security service in an application layer among all messages transceived between a browser and the web server. CONSTITUTION: A web server(130) comprises as follows. A script interpreter(132) interprets web daemon receiving a service request of a browser(110) and a script at the request of the web daemon, and performs an interpretation. A script security API(133) supplies a security service of a script, performs security negotiation with the browser(110), and manages session information. A session information object(134) stores the session information. The script security API(133) comprises as follows. A security negotiation API supplies a security negotiation function with the browser(110). A security service API supplies a security service function. A session control block stores and manages security session information negotiated with the browser(110).
Abstract translation: 目的:提供一种使用应用层脚本和点对点安全性会话信息管理方法的无线因特网系统来管理一个事务范围内的Web服务器中的整个会话的安全信息,从而在应用层中提供安全服务 所有消息都在浏览器和Web服务器之间收发。 构成:Web服务器(130)包括如下。 脚本解释器(132)解释web守护进程在Web守护进程的请求下接收浏览器(110)和脚本的服务请求,并执行解释。 脚本安全API(133)提供脚本的安全服务,与浏览器(110)执行安全协商,并管理会话信息。 会话信息对象(134)存储会话信息。 脚本安全API(133)包括如下。 安全协商API提供与浏览器(110)的安全协商功能。 安全服务API提供安全服务功能。 会话控制块存储和管理与浏览器(110)协商的安全会话信息。
-
公开(公告)号:KR101751935B1
公开(公告)日:2017-07-03
申请号:KR1020110130802
申请日:2011-12-08
Applicant: 한국전자통신연구원
Abstract: 본발명은부채널분석검증을위한암호알고리즘이구현된하드웨어모듈의전력신호시뮬레이션파형을생성하는전력시뮬레이션파형생성장치및 그방법에관한것이다. 암호알고리즘하드웨어에서의전력시뮬레이션파형생성장치는암호하드웨어에전력상태에해당하며, 복수개의비트를가지는입력문을입력받는입력부, 입력문을적어도하나의비트를포함하는복수개의그룹또는시간에따라복수개의그룹으로분리하는분리부, 분리부에서분리한그룹별로해당하는파형을파형저장부에서검색하고, 검색한파형을해당그룹에적용하는파형적용부및 그룹별 파형을모두통합하여최종적으로암호알고리즘하드웨어에서의전력시뮬레이션파형을생성하는통합부를포함한다.
Abstract translation: 本发明涉及到的子信道分析验证加密算法创建功率信号功率仿真波形仿真,以产生的装置和方法的实现的硬件模块的波形。 加密算法硬件eseoui电力模拟波形生成单元包括多个根据所述输入单元,所述输入语句接收对应于功率状态时,输入到具有多个加密硬件位以多个组,或者包括至少一个位的时间的输入门 用于分离的基团,以搜索对应于从波形存储部中的分离部分分离的每个组的波形,并且集成了所有波形施加单元和特定组波形的分离单元将被施加到该组最终的加密算法的硬件在搜索波 在这个实施例中,
-
公开(公告)号:KR1020160109891A
公开(公告)日:2016-09-21
申请号:KR1020150035115
申请日:2015-03-13
Applicant: 한국전자통신연구원
CPC classification number: H04L9/0866 , H03M13/63 , H04L9/304 , H04L9/3278
Abstract: 본발명은 PUF 기반암호키생성방법및 장치에관한것으로, 특히 PUF를이용하여안정적인암호키를생성하는방법및 장치에관한것이다. 이에따른본 발명은, 물리적복제방지기능(Physically Unclonable Function; PUF)을통하여고유값을생성하는단계, 상기고유값및 기저장된암호키동일성검증정보를이용하여, 최초에생성된암호키와상기고유값간 동일성을검증하는단계, 상기최초에생성된암호키와상기고유값이동일하지않으면, 상기고유값및 기저장된암호키재생성정보를이용하여오류정정부호디코딩을수행하는단계및 디코딩된코드를암호키로사용하는단계를포함하는것을특징으로하는암호키생성방법및 장치에관한것이다.
Abstract translation: 本发明涉及一种用于生成基于物理不可克隆功能(PUF)的密码密钥的方法和装置,更具体地说,涉及一种基于PUF生成稳定的加密密钥的方法和装置。 根据本发明,提供了一种基于PUF生成加密密钥的方法,该方法包括以下步骤:通过使用PUF生成特征值; 通过使用特征值和先前存储的加密密钥身份验证信息来验证最初生成的加密密钥和特征值之间的身份; 当初始产生的加密密钥和特征值彼此不相同时,通过使用特征值和先前存储的加密密钥再生信息执行纠错码解码; 并使用在执行纠错码解码的步骤中解码的代码作为密码密钥。 还提供了基于PUF生成加密密钥的装置。
-
-
-
-
-
-
-
-
-